Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-14 14:59:20.038 00:00:22.027 TCP 1.101.0.1:3000 -> 23.104.0.1:48776 10 6452 1 2025-11-14 15:00:32.134 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:53988 10 6452 1 2025-11-14 15:01:32.533 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:56052 10 6452 1 2025-11-14 14:57:00.632 00:06:00.164 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 15:02:26.727 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:02:26.579 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:02:26.598 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:02:26.845 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:02:26.928 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:02:32.949 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:40740 10 6452 1 2025-11-14 15:03:33.362 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:35588 10 6452 1 2025-11-14 15:04:33.723 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:46796 10 6452 1 2025-11-14 15:00:00.636 00:06:00.159 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 15:05:34.140 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:48532 10 6452 1 2025-11-14 15:06:34.496 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:59962 10 6452 1 2025-11-14 15:07:26.628 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:07:26.626 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:07:26.821 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:07:26.869 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:07:26.953 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:07:34.903 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:48418 10 6452 1 2025-11-14 15:08:35.318 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33636 10 6452 1 2025-11-14 15:04:00.633 00:06:00.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 15:09:35.723 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:40346 10 6452 1 2025-11-14 15:10:36.145 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:42654 10 6452 1 2025-11-14 15:11:36.547 00:00:10.525 TCP 1.101.0.1:3000 -> 23.104.0.1:36996 10 6452 1 2025-11-14 15:07:00.638 00:06:00.160 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 15:12:26.839 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:12:26.674 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:12:26.789 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:12:26.837 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:12:26.920 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:12:37.118 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:41394 10 6452 1 2025-11-14 15:13:37.521 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:41268 10 6452 1 2025-11-14 15:14:37.929 00:00:10.388 TCP 1.101.0.1:3000 -> 23.104.0.1:55488 10 6452 1 2025-11-14 15:15:38.352 00:00:10.360 TCP 1.101.0.1:3000 -> 23.104.0.1:54666 10 6452 1 2025-11-14 15:11:00.637 00:06:00.166 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 15:16:38.755 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:51116 10 6452 1 2025-11-14 15:17:27.142 00:00:00.042 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:17:26.945 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:17:27.061 00:00:00.033 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:17:26.893 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:17:27.061 00:00:00.041 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:17:39.165 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47434 10 6452 1 2025-11-14 15:18:39.565 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:46328 10 6452 1 2025-11-14 15:14:00.639 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 15:19:39.962 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:36708 10 6452 1 2025-11-14 15:20:40.376 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:33960 10 6452 1 2025-11-14 15:21:40.783 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:44762 10 6452 1 2025-11-14 15:22:27.218 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:22:27.002 00:00:00.036 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:22:26.995 00:00:00.046 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:22:26.893 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:22:27.137 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:22:41.147 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:48340 10 6452 1 2025-11-14 15:18:00.638 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 15:23:41.551 00:00:10.358 TCP 1.101.0.1:3000 -> 23.104.0.1:47276 10 6452 1 2025-11-14 15:24:41.949 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:59744 10 6452 1 2025-11-14 15:25:42.359 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:35846 10 6452 1 2025-11-14 15:21:00.643 00:06:00.161 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 15:26:42.769 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:49380 10 6452 1 2025-11-14 15:27:27.790 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:27:27.737 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:27:27.638 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:27:27.833 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:27:27.916 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:27:43.179 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:57614 10 6452 1 2025-11-14 15:28:43.587 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:44240 10 6452 1 2025-11-14 15:29:44.001 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:40722 10 6452 1 2025-11-14 15:25:00.642 00:06:00.167 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 15:30:44.403 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:49708 10 6452 1 2025-11-14 15:31:44.808 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50914 10 6452 1 2025-11-14 15:32:27.431 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:32:27.433 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:32:27.403 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:32:27.435 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:32:27.518 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:32:45.214 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:42658 10 6452 1 2025-11-14 15:28:00.643 00:06:00.162 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 15:33:45.574 00:00:10.485 TCP 1.101.0.1:3000 -> 23.104.0.1:36240 10 6452 1 2025-11-14 15:34:46.127 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:47000 10 6452 1 2025-11-14 15:35:46.529 00:00:10.323 TCP 1.101.0.1:3000 -> 23.104.0.1:54522 10 6452 1 2025-11-14 15:36:46.891 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:46400 10 6452 1 2025-11-14 15:32:00.643 00:06:00.168 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 15:37:27.393 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:37:27.590 00:00:00.025 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:37:27.686 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:37:27.491 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:37:27.311 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:37:47.257 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:59818 10 6452 1 2025-11-14 15:38:47.619 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:47570 10 6452 1 2025-11-14 15:39:48.021 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:52416 10 6452 1 2025-11-14 15:35:00.645 00:06:00.163 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 15:40:48.425 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:53428 10 6452 1 2025-11-14 15:41:48.828 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:60798 10 6452 1 2025-11-14 15:42:27.452 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:42:27.558 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:42:27.501 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:42:27.360 00:00:00.025 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:42:27.442 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:42:49.191 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:50288 10 6452 1 2025-11-14 15:43:49.592 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:34570 10 6452 1 2025-11-14 15:39:00.642 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 15:44:49.999 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:45456 10 6452 1 2025-11-14 15:45:50.407 00:00:10.524 TCP 1.101.0.1:3000 -> 23.104.0.1:34960 10 6452 1 2025-11-14 15:42:00.644 00:06:00.166 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 15:46:50.972 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34722 10 6452 1 2025-11-14 15:47:27.545 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:47:27.644 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:47:27.313 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:47:27.645 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:47:27.728 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:47:51.378 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:33542 10 6452 1 2025-11-14 15:48:51.786 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:54708 10 6452 1 2025-11-14 15:49:52.197 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:50748 10 6452 1 2025-11-14 15:46:00.643 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 15:50:52.599 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:52818 10 6452 1 2025-11-14 15:51:53.008 00:00:10.330 TCP 1.101.0.1:3000 -> 23.104.0.1:43168 10 6452 1 2025-11-14 15:52:27.839 00:00:00.025 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:52:27.516 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:52:27.627 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:52:27.723 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:52:27.746 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:52:53.383 00:00:10.390 TCP 1.101.0.1:3000 -> 23.104.0.1:50642 10 6452 1 2025-11-14 15:49:00.646 00:06:00.167 TCP 179.21.23.21:38570 -> 179.21.23.23:179 14 861 1 2025-11-14 15:53:53.822 00:00:10.502 TCP 1.101.0.1:3000 -> 23.104.0.1:50754 10 6452 1 2025-11-14 15:54:54.363 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:47598 10 6452 1 2025-11-14 15:55:54.763 00:00:10.616 TCP 1.101.0.1:3000 -> 23.104.0.1:59348 10 6452 1 2025-11-14 15:56:55.417 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58964 10 6452 1 2025-11-14 15:57:27.802 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-14 15:57:27.848 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-14 15:57:27.735 00:00:00.023 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:57:27.709 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-14 15:57:27.792 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-14 15:53:00.644 00:06:00.172 TCP 179.21.23.23:179 -> 179.21.23.21:38570 14 861 1 2025-11-14 15:57:55.783 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:33222 10 6452 1 Summary: total flows: 136, total bytes: 410425, total packets: 1008, avg bps: 882, avg pps: 0, avg bpp: 407 Time window: 2025-11-14 14:57:00 - 2025-11-14 15:59:00 Total flows processed: 136, passed: 136, Blocks skipped: 0, Bytes read: 14208 Sys: 0.0029s User: 0.0019s Wall: 0.0027s flows/second: 50240.0 Runtime: 0.0027s